You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@cassandra.apache.org by "Jason Brown (JIRA)" <ji...@apache.org> on 2016/11/10 00:52:00 UTC

[jira] [Resolved] (CASSANDRA-8751) C* should always listen to both ssl/non-ssl ports

     [ https://issues.apache.org/jira/browse/CASSANDRA-8751?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Jason Brown resolved CASSANDRA-8751.
------------------------------------
    Resolution: Duplicate

Closing as a (sort of) dupe of CASSANDRA-10404. That ticket will cover this one + transitional SSL

> C* should always listen to both ssl/non-ssl ports
> -------------------------------------------------
>
>                 Key: CASSANDRA-8751
>                 URL: https://issues.apache.org/jira/browse/CASSANDRA-8751
>             Project: Cassandra
>          Issue Type: Improvement
>            Reporter: Minh Do
>            Assignee: Minh Do
>             Fix For: 3.x
>
>
> Since there is always one thread dedicated on server socket listener and it does not use much resource, we should always have these two listeners up no matter what users set for internode_encryption.
> The reason behind this is that we need to switch back and forth between different internode_encryption modes and we need C* servers to keep running in transient state or during mode switching.  Currently this is not possible.
> For example, we have a internode_encryption=dc cluster in a multi-region AWS environment and want to set internode_encryption=all by rolling restart C* nodes.  However, the node with internode_encryption=all does not open to listen to non-ssl port.  As a result, we have a splitted brain cluster here.



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)